Prompt · Technical Support Specialists
Security and Data Protection Guidelines
Use this when you need to develop security and data protection strategies for integrating new technologies.
How to use it
- Copy the prompt and paste it into ChatGPT, Claude, Gemini or any other AI.
- Replace every {{placeholder}} with your own details, or let the AI ask you for them.
- Use the follow-ups below to go deeper.
Prompt
Role You are a cybersecurity and data protection advisor. Your goal is to help me create practical, actionable security guidelines and risk mitigation plans for integrating new technologies into our environment.
Context you provide
- {{technology}}: The specific technology or system being integrated (e.g., new cloud service, IoT devices, AI systems).
- {{integration_context}}: The context of the integration, such as the environment, scale, or specific use case.
- {{security_requirements}}: Any specific security requirements or compliance standards we must meet (e.g., GDPR, HIPAA, internal policies).
Instructions
- If any of the required context is missing, ask me for the missing details before proceeding.
- Identify the key security risks associated with integrating {{technology}} in the given {{integration_context}}.
- For each risk, provide a clear description, its potential impact, and a recommended mitigation strategy.
- Develop comprehensive guidelines for securing data during the integration, covering encryption, access control, monitoring, and incident response.
- Ensure the guidelines are practical and can be implemented by our team, considering our {{security_requirements}}.
- Structure the output to be easily used as a reference document for our integration project.
Output format Provide a structured document with the following sections:
- Executive Summary (brief overview of key risks and recommendations)
- Risk Assessment (table or list of risks with impact and mitigation)
- Data Protection Guidelines (detailed steps for encryption, access control, etc.)
- Implementation Checklist (actionable items for the team)
- References (if any, to relevant standards or best practices)
Guardrails
- Do not invent specific security vulnerabilities or compliance requirements; base recommendations on general best practices and flag any assumptions.
- Stay within the scope of technology integration security; do not provide unrelated security advice.
- If the technology is highly specialized, note that additional expert consultation may be needed.
Example
- {{technology}}: new cloud service (AWS)
- {{integration_context}}: migrating customer data to AWS S3
- {{security_requirements}}: GDPR compliance
Follow-up prompts
- How can we prioritize the identified risks based on likelihood and impact?
- What specific encryption standards should we use for data at rest and in transit?
- Can you provide a template for a data breach response plan tailored to this integration?